<!DOCTYPE html
  PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
   <head>
      <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /><?xml-stylesheet href="http://www.w3.org/Math/XSL/mathml.xsl" type="text/xsl" ?>
      <meta http-equiv="Content-Script-Type" content="text/javascript" />
      <meta http-equiv="Content-Style-Type" content="text/css" />
      <meta name="description" content="Netzwerktechnik 2: Incoming-Datenfilter. " />
      <meta name="copyright" content="" />
      <meta name="author" content="" />
      <meta name="keywords"
            content="Netzwerktechnik 2, Spanning-Tree-Protokoll (STP),  Rapid-Spanning-Tree-Protokoll (RSTP), Per-VLAN-Spanning-Tree (PVST), Multiple-Spanning-Tree (MST), Variable-Length-Subnet-Masking (VLSM), Route-Summarization, Overhead, Message-Digest Algorithm 5 (MD5), Time Division Multiplexing, Packet Assembler/Disassembler, Internetwork Operating System (IOS), Access-Routern, Non-volatile RAM (NVRAM), Public Switched Telephone Network (PSTN), Security-Gateway, Inaktivitätszeit, Trunk, eLML" />
      <title>1.13.16. Incoming-Datenfilter</title>
      <link href="../../../_templates/airnet/elml.css" type="text/css" rel="stylesheet"
            media="screen" />
      <link href="../../../_templates/airnet/elml_print.css" type="text/css"
            rel="stylesheet"
            media="print,handheld" /><script src="../../../_templates/airnet/elml.js" type="text/javascript"></script><script type="text/javascript"
              src="../../../_templates/airnet/lightwindow/javascript/prototype.js"
              id="lwloader_prototype_js"></script><script type="text/javascript"
              src="../../../_templates/airnet/lightwindow/javascript/effects.js"
              id="lwloader_effects_js"></script><script type="text/javascript"
              src="../../../_templates/airnet/lightwindow/javascript/lightwindow_loader.js"
              id="lwloader"></script><script type="text/javascript" language="JavaScript1.2" src="scorm_generic.js"></script></head>
   <body xmlns:xs="http://www.w3.org/2001/XMLSchema" xmlns:elml="http://www.elml.ch"
         xmlns:xhtml="http://www.w3.org/1999/xhtml"
         xmlns:functx="http://www.functx.com"
         onunload="finish()">
      <div class="bodywidth"><a accesskey="1" href="#navigation" title="Zur Navigation springen">
     <!----> </a><a accesskey="2" href="#content" title="Zum Inhalt springen"> <!----> </a><a name="top"> <!----> </a><div id="breadcrumbnav"><a href="index.xml">Netzwerktechnik 2</a> > <a href="unit_AufbAnwAL.xml">Aufbau und Anwendung von Access-Control-Listen</a> > <a href="#top">Incoming-Datenfilter</a><div style="float:right;">
               <div id="logos_lang">
                  <table>
                     <tbody>
                        <tr>
                           <td class="columnRight"><a><img alt="airnet logo" height="25"
                                      src="/_templates/airnet/authoring/images/airnet_logo.jpg" /></a></td>
                        </tr>
                     </tbody>
                  </table>
               </div>
            </div>
         </div>
         <div id="headerarea">
            <video src="/_templates/airnet/authoring/images/video.mp4" type="video/mp4"
                   width="1000"
                   height="250"
                   unit="pixels"
                   autoplay="yes"
                   loop="yes"
                   poster="/_templates/airnet/authoring/images/Head.jpg"></video>
         </div>
         <div class="floatclear"> <!----> </div>
         <div id="primarnav"><a class="namedanchor" name="navigation"> <!----> </a><a href="unit_EntwLANBer.xml">Entwicklung des LAN-Bereichs</a><div class="linkseparator">|</div><a href="unit_GrundfBrdg.xml">Grundfunktion einer Transparent-Bridge</a><div class="linkseparator">|</div><a href="unit_Lay2Sw.xml">Der Layer-2-Switch</a><div class="linkseparator">|</div><a href="unit_Lay3Rout.xml">Layer-3-Routing</a><div class="linkseparator">|</div><a href="unit_STPErwCisco.xml">Spanning-Tree-Erweiterungen -- Cisco</a><div class="linkseparator">|</div><a href="unit_STPErwIEEE.xml">Spanning-Tree-Erweiterungen – IEEE</a><div class="linkseparator">|</div><a href="unit_STPOpt.xml">Spanning-Tree-Optionen</a><div class="linkseparator">|</div><a href="unit_SwSec.xml">Switch-Security</a><div class="linkseparator">|</div><a href="unit_VerwHTTP.xml">Verwaltung mit HTTP</a><div class="linkseparator">|</div><a href="unit_DrahtL.xml">Drahtlose Kommunikation</a><div class="linkseparator">|</div><a href="unit_VLSMRoutSum.xml">VLSM und Route-Summarization</a><div class="linkseparator">|</div><a href="unit_GrundKonfRIP.xml">Grundlagen und Konfiguration von RIP</a><div class="linkseparator">|</div><a href="unit_AufbAnwAL.xml">Aufbau und Anwendung von Access-Control-Listen</a><div class="linkseparator">|</div><a href="unit_NATProt.xml">Adressübersetzung durch NAT und PAT</a><div class="linkseparator">|</div><a href="unit_VPN.xml">Virtuelle Private Netze (Virtual Private Networks)</a><div class="linkseparator">|</div><a href="unit_KryptIPSecVPNs.xml">Kryptographie und IPSec VPNs</a><div class="linkseparator">|</div><a href="unit_GrundIPv6.xml">Grundlagen von IPv6</a><div class="linkseparator">|</div><a href="unit_SNMP.xml">Simple Network Management Protocol (SNMP)</a><div class="linkseparator">|</div>
         </div>
         <div class="floatclear"> <!----> </div>
         <div class="endheaderline"><img alt="separation line" height="1"
                 src="/_templates/airnet/authoring/images/1.gif"
                 width="1" /></div>
         <div id="toolnav"><!---->
     </div>
         <div class="floatclear"> <!----> </div>
         <div id="col1">
            <div id="secnav">
               <div class="solidline"><img alt="separation line" height="1"
                       src="/_templates/airnet/authoring/images/1.gif"
                       width="1" /></div>
               <p class="titel"><br /><a href="index.xml">1. Netzwerktechnik 2</a></p>
               <div class="dotlinelead"><img alt="separation line" height="1"
                       src="/_templates/airnet/authoring/images/1.gif"
                       width="1" /></div>
               <ul>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <ul>
                     <li><a href="AufbAnwAL_learningObject1.xml">1.13.1. Definition von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject2.xml">1.13.2. Einsatzgebiet von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject3.xml">1.13.3. Grundsätzliche Bestimmungen</a></li>
                     <li><a href="AufbAnwAL_learningObject4.xml">1.13.4. Grundsätzliche Bestimmungen</a></li>
                     <li><a href="AufbAnwAL_learningObject5.xml">1.13.5. Grundsätzliche Bestimmungen und Nummernbereiche von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject6.xml">1.13.6. Grundsätzliche Bestimmungen</a></li>
                     <li><a href="AufbAnwAL_learningObject7.xml">1.13.7. Abarbeitung der Statements</a></li>
                     <li><a href="AufbAnwAL_learningObject8.xml">1.13.8. Wildcard-Maske und Abkürzungen</a></li>
                     <li><a href="AufbAnwAL_learningObject9.xml">1.13.9. IP-Standard-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject10.xml">1.13.10. IP-Extended-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject11.xml">1.13.11. Verifizieren von ACLs</a></li>
                     <li><a href="AufbAnwAL_learningObject12.xml">1.13.12. Editieren von ACLs (früher)</a></li>
                     <li><a href="AufbAnwAL_learningObject13.xml">1.13.13. Editieren von ACLs (heute)</a></li>
                     <li><a href="AufbAnwAL_learningObject14.xml">1.13.14. Querverweis zur ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject15.xml">1.13.15. Incoming-/Outgoing-Datenfilter</a></li>
                     <li><a class="activ" href="AufbAnwAL_learningObject16.xml">1.13.16. Incoming-Datenfilter</a></li>
                     <li><a href="AufbAnwAL_learningObject17.xml">1.13.17. Outgoing-Datenfilter</a></li>
                     <li><a href="AufbAnwAL_learningObject18.xml">1.13.18. Grundsätzliches zu Datenfiltern</a></li>
                     <li><a href="AufbAnwAL_learningObject19.xml">1.13.19. Verifizieren von Datenfiltern</a></li>
                     <li><a href="AufbAnwAL_learningObject20.xml">1.13.20. VTY-Zugriffseinschränkung</a></li>
                     <li><a href="AufbAnwAL_learningObject21.xml">1.13.21. Querverbindung zur ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject22.xml">1.13.22. Zugriffseinschränkung auf Router</a></li>
                     <li><a href="AufbAnwAL_learningObject23.xml">1.13.23. IP-Standard-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject24.xml">1.13.24. IP-Extended-ACL</a></li>
                     <li><a href="AufbAnwAL_learningObject25.xml">1.13.25. IP-Extended-ACL</a></li>
                  </ul>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <li><a href="CR2-EG_glossary.xml">1.19. Glossar</a></li>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
                  <li><a href="CR2-EG_index.xml">1.20. Stichwortverzeichnis</a></li>
                  <div class="dotline"><img height="1" width="1" alt="separation line"
                          src="/_templates/airnet/authoring/images/1.gif" /></div>
               </ul> <!----> 
            </div>
         </div>
         <div class="contcol2"><a accesskey="2" class="namedanchor" name="content"> <!----> </a><div class="content">
               <h1 id="AufbAnwAL_learningObject16.xml">1.13.16. Incoming-Datenfilter</h1>
               <div id="d8e11273.xml" class="look">
                  <table class="table" id="d8e11274" width="100%">
                     <thead>
                        <tr class="tablerowAlt">
                           <th class="tableheading" id="d8e11276" style="text-align: center; ">Präsentation</th>
                        </tr>
                     </thead>
                     <tbody>
                        <tr class="tablerowAlt">
                           <td class="tabledata" id="d8e11279"><span class="multimedia_paragraph_center"><img class="multimedia" id="d8e11280" src="../image/s2m007/AbbIncDatFilt.jpg"
                                      width="55%"
                                      alt="" /></span></td>
                        </tr>
                     </tbody>
                  </table>
                  <p class="paragraph" id="d8e11281">Hier ist dargestellt, wie ein Incoming-Datenfilter im Einzelnen
                     					funktioniert. Kommt ein Datenpaket an der Quellschnittstelle an, werden die
                     					Statements der ACL abgearbeitet. Sobald es einen Treffer (Match) gibt, wird
                     					überprüft, ob in dem entsprechenden Statement ein »permit« oder
                     					»deny« definiert ist. Im Falle eines »deny« wird das Paket
                     					sofort verworfen. Ist ein »permit« definiert, wird die
                     					IP-Routing-Tabelle nach dem Eintrag des im Datenpaket angegebenen Zielnetzwerks
                     					durchsucht. Ist kein Eintrag vorhanden, wird das Paket ebenfalls verworfen.
                     					Andernfalls wird die ausgehende Schnittstelle (OUI) ermittelt. Diese ist in der
                     					IP-Routing-Tabelle am Ende eines Routing-Eintrags angegeben. Das Paket wird dann
                     					auf der ausgehenden Schnittstelle weitergeleitet. 
                  </p>
               </div>
            </div>
            <div class="footermargintop"> <!----> </div>
            <div class="topnav"><a href="#top">top</a></div>
            <div class="solidline"><img alt="separation line" height="1"
                    src="/_templates/airnet/authoring/images/1.gif"
                    width="1" /></div>
            <div id="footer"><a href="http://www.airnet.de">© AIRNET 2015</a> |  © <a href="http://www.elml.org/" target="_blank">(eLML)</a> | <a href="mailto:info@airnet.de">Kontakt</a> |  Update: 17.3.2015
            </div>
         </div>
      </div>
   </body>
</html>